The Blubrry subscribe-sidebar (aka Subscribe Sidebar) plugin 1.3.1 for WordPress allows subscribe_sidebar.php&status= reflected XSS.
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
https://zeroaptitude.com/pitticus/subscribe-sidebar-plugin-by-blubrry-v1-3-1-reflected-xss-20-jun-2020/ | third party advisory url repurposed |
https://wordpress.org/plugins/subscribe-sidebar/#developers | third party advisory |